CVE-2016-5427: Powerdns Authoritative

High severity, CVSS 7.5. EPSS: 63% chance of exploitation in the next 30 days.

PowerDNS (aka pdns) Authoritative Server before 3.4.10 does not properly handle a . (dot) inside labels, which allows remote attackers to cause a denial of service (backend CPU consumption) via a crafted DNS query.

Affected products

  • Powerdns Authoritative: up to and including 3.4.9

Published 2016-09-21. Last modified 2026-06-17.